meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, July 20th 2017

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 20 July 2017

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Web Error Logs; Apple Updates Everything;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, July 20th, 2017 edition of the Sands and Storm Center's Stormcast.

0:07.9

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:12.8

Xavier today took a closer look at web server error logs.

0:17.8

Now, we collect them as part of our 404 project, as the name implies, we're looking

0:23.5

for 404 errors. Essentially, errors where people are looking for a certain page on your server

0:29.2

that doesn't exist. What we find often is that these are also attempts to find various

0:36.8

vulnerabilities on your site.

0:39.3

For example, software that you may have installed.

0:42.5

Now, there are, of course, your top hits like WordPress and the like.

0:46.9

Xavier looked a little bit at the less common logs.

0:51.1

And what he found is a lot of attempts to find configuration files. Configuration files,

0:58.3

of course, are always interesting because they may contain things like passwords and other

1:04.1

configuration parameters that are interesting for the attacker. They also may tell the attacker

1:10.1

more about how a certain piece of software

1:12.3

is installed, what version it's running, and whether or not it is vulnerable.

1:18.6

If you're interested in participating in the 404 project, pretty easy to do so.

1:24.3

You just have to submit essentially your 404 error logs via a little script.

1:30.0

I'm also about done integrating this in our Raspberry Pie Honeypot.

1:35.7

So if you're waiting until next week, you probably can submit logs like this using this Raspberry Pi setup.

1:45.2

And Apple today again updated everything, which means iOS, Mac OS, Safari for older versions of OS 10,

1:54.4

also watchOS, TVOS, iTunes for Apple and for Windows.

2:01.4

So really every piece of software that you're likely running from Apple received an update.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.